Security Engineer, Agent Security
- Security
- Remote (global)
- Full-time
- Senior (5–8 years)
- Senior
Give every agent an identity, scope its permissions, sandbox the untrusted, and detect privilege escalation before it reaches a client's production system.
What you're signing up for
Agent fleets are a new attack surface: compromised agents, privilege escalation between agents, and opaque tool use that bypasses existing controls. You will own the security discipline we build into client systems — cryptographic agent identity, scoped permissions, read-only sandboxes for untrusted operations, and an append-only audit log nothing can erase. You will also build the detection that flags anomalous agent behavior and cross-agent privilege escalation at the boundary.